Improper Restriction of Operations within the Bounds of a Memory Buffer in Google TensorFlow
High severity
GitHub Reviewed
Published
Apr 24, 2019
to the GitHub Advisory Database
•
Updated Oct 28, 2024
Description
Published by the National Vulnerability Database
Apr 23, 2019
Reviewed
Apr 24, 2019
Published to the GitHub Advisory Database
Apr 24, 2019
Last updated
Oct 28, 2024
Google TensorFlow 1.7 and below is affected by: Buffer Overflow. The impact is: execute arbitrary code (local). Users passing a malformed or malicious version of a TFLite graph into TOCO will cause TOCO to crash or cause a buffer overflow, potentially allowing malicious code to be executed.
References